Skip to content
Verified official

GhostFree MCP

v0.2.0

io.github.shane-js/ghostfree

MCP server that scans your repo's dependencies for security vulnerabilities based on published CVEs.

transport:stdio runtime:npm

Target client

run in your project directory

Held in this page only — never stored, logged, or sent anywhere but back to your screen.

claude mcp add ghostfree -e GHOSTFREE_DIR=<GHOSTFREE_DIR> -e GHOSTFREE_MIN_SEVERITY=<GHOSTFREE_MIN_SEVERITY> -e NVD_API_KEY=<NVD_API_KEY> -- npx -y ghostfree

Adds it for this project only. Append --scope user to make it available everywhere. Claude Code docs

This listing does not declare its tools. Connect the server and your client will discover them on the handshake.